Lucene search

K
cveMitreCVE-2005-4732
HistoryMar 19, 2006 - 11:00 p.m.

CVE-2005-4732

2006-03-1923:00:00
mitre
web.nvd.nist.gov
21
cve
2005
4732
xss
vulnerabilities
tux racer
tuxbank
index.php

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6

Confidence

High

EPSS

0.003

Percentile

65.8%

Multiple cross-site scripting (XSS) vulnerabilities in index.php in Tux Racer TuxBank 0.7x and 0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) description parameters.

Affected configurations

Nvd
Node
tux_racertuxbankMatch0.8
OR
tux_racertuxbankMatch0.72
OR
tux_racertuxbankMatch0.73
OR
tux_racertuxbankMatch0.74
OR
tux_racertuxbankMatch0.75
OR
tux_racertuxbankMatch0.76
OR
tux_racertuxbankMatch0.77
VendorProductVersionCPE
tux_racertuxbank0.8cpe:2.3:a:tux_racer:tuxbank:0.8:*:*:*:*:*:*:*
tux_racertuxbank0.72cpe:2.3:a:tux_racer:tuxbank:0.72:*:*:*:*:*:*:*
tux_racertuxbank0.73cpe:2.3:a:tux_racer:tuxbank:0.73:*:*:*:*:*:*:*
tux_racertuxbank0.74cpe:2.3:a:tux_racer:tuxbank:0.74:*:*:*:*:*:*:*
tux_racertuxbank0.75cpe:2.3:a:tux_racer:tuxbank:0.75:*:*:*:*:*:*:*
tux_racertuxbank0.76cpe:2.3:a:tux_racer:tuxbank:0.76:*:*:*:*:*:*:*
tux_racertuxbank0.77cpe:2.3:a:tux_racer:tuxbank:0.77:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6

Confidence

High

EPSS

0.003

Percentile

65.8%

Related for CVE-2005-4732